avsej / gson.rb

Ruby wrapper for google-gson library
Apache License 2.0
10 stars 5 forks source link

Solve CVE-2022-25647. #10

Open mashhurs opened 1 year ago

mashhurs commented 1 year ago

Description

Current 0.6.1 version internally uses lib/gson-2.2.2.jar which is CVE-2022-25647 eligible. gson needs to include at least gson-2.8.9 to be CVEs free.